CVE-2002-1989: Caucho Technology Resin

Medium severity, CVSS 5.0. EPSS: 1.2% chance of exploitation in the next 30 days.

Resin 2.1.1 allows remote attackers to cause a denial of service (thread and connection consumption) via multiple URL requests containing the DOS 'CON' device name and a registered file extension such as .jsp or .xtp.

Affected products

Published 2002-12-31. Last modified 2026-06-16.